In PHP versions 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* before 8.2.8 various XML functions rely on libxml global state to track configuration variables, like whether external entities are loaded. This state is assumed to be unchanged unless the user explicitly changes it by calling appropriate function. However, since the state is process-global, other modules - such as ImageMagick - may also use this library within the same process, and change that global state for their internal purposes, and leave it in a state where external entities loading is enabled. This can lead to the situation where external XML is parsed with external entities loaded, which can lead to disclosure of any local files accessible to PHP. This vulnerable state may persist in the same process across many requests, until the process is shut down.
{
"binaries": [
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "libapache2-mod-php5"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "libapache2-mod-php5filter"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "libphp5-embed"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php-pear"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-cgi"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-cli"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-common"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-curl"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-dev"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-enchant"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-fpm"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-gd"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-gmp"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-intl"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-ldap"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-mysql"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-mysqlnd"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-odbc"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-pgsql"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-pspell"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-readline"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-recode"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-snmp"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-sqlite"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-sybase"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-tidy"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-xmlrpc"
},
{
"binary_version": "5.5.9+dfsg-1ubuntu4.29+esm16",
"binary_name": "php5-xsl"
}
]
}
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "libapache2-mod-php7.0"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "libphp7.0-embed"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-bcmath"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-bz2"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-cgi"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-cli"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-common"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-curl"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-dba"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-dev"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-enchant"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-fpm"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-gd"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-gmp"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-imap"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-interbase"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-intl"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-json"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-ldap"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-mbstring"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-mcrypt"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-mysql"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-odbc"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-opcache"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-pgsql"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-phpdbg"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-pspell"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-readline"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-recode"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-snmp"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-soap"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-sqlite3"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-sybase"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-tidy"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-xml"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-xmlrpc"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-xsl"
},
{
"binary_version": "7.0.33-0ubuntu0.16.04.16+esm10",
"binary_name": "php7.0-zip"
}
]
}
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "libapache2-mod-php7.2"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "libphp7.2-embed"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-bcmath"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-bz2"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-cgi"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-cli"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-common"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-curl"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-dba"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-dev"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-enchant"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-fpm"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-gd"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-gmp"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-imap"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-interbase"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-intl"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-json"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-ldap"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-mbstring"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-mysql"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-odbc"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-opcache"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-pgsql"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-phpdbg"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-pspell"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-readline"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-recode"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-snmp"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-soap"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-sqlite3"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-sybase"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-tidy"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-xml"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-xmlrpc"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-xsl"
},
{
"binary_version": "7.2.24-0ubuntu0.18.04.17+esm4",
"binary_name": "php7.2-zip"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "libapache2-mod-php7.4"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "libphp7.4-embed"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-bcmath"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-bz2"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-cgi"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-cli"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-common"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-curl"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-dba"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-dev"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-enchant"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-fpm"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-gd"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-gmp"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-imap"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-interbase"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-intl"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-json"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-ldap"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-mbstring"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-mysql"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-odbc"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-opcache"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-pgsql"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-phpdbg"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-pspell"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-readline"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-snmp"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-soap"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-sqlite3"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-sybase"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-tidy"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-xml"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-xmlrpc"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-xsl"
},
{
"binary_version": "7.4.3-4ubuntu2.20",
"binary_name": "php7.4-zip"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "libapache2-mod-php7.4"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "libapache2-mod-php8.0"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "libapache2-mod-php8.1"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "libphp8.1-embed"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-bcmath"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-bz2"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-cgi"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-cli"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-common"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-curl"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-dba"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-dev"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-enchant"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-fpm"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-gd"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-gmp"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-imap"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-interbase"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-intl"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-ldap"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-mbstring"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-mysql"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-odbc"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-opcache"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-pgsql"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-phpdbg"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-pspell"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-readline"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-snmp"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-soap"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-sqlite3"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-sybase"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-tidy"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-xml"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-xsl"
},
{
"binary_version": "8.1.2-1ubuntu2.14",
"binary_name": "php8.1-zip"
}
]
}